Private manufacturing company
| Primary URL | Location | Industry | Undetermined |
Country
Poland
|
Manufacturing
|
|---|
Profile
The organisation is a private manufacturing company headquartered in Poland. It engages in the production of goods within the manufacturing sector, though the specific products or industries it serves are not detailed in the available sources. As a privately held entity, its ownership structure is not publicly disclosed beyond being independent of state ownership. The company operates from its Polish headquarters, serving domestic and potentially international markets typical for manufacturers in the region. Its role in Poland's industrial landscape positions it among the numerous firms that contribute to the country's manufacturing output. No further specifics about its product lines, customer base, or operational scale are provided in the referenced material.
In late December 2025, the company was among several Polish industrial targets hit by a coordinated cyberattack that also affected energy and renewable facilities. Attackers gained initial access through internet‑exposed FortiGate VPN concentrators lacking multi‑factor authentication, using stolen device configurations to persist and obtain administrative Windows domain access. Within the manufacturing environment, they deployed a PowerShell‑based wiper known as LazyWiper, distributed via Group Policy Objects, with the intent of destroying business‑critical data. The attack was part of a broader campaign that included firmware corruption at renewable sites and the use of the DynoWiper wiper at a heat and power plant. CERT Polska attributed the activity to a single threat actor linked to Russia‑associated groups such as Static Tundra, Berserk Bear, Ghost Blizzard and Dragonfly. The incident highlights the vulnerability of industrial organisations to supply‑chain and remote‑access exploits when multi‑factor authentication is absent.
